FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2025-09-07 09:58:36 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
7cb6642c-0c5a-11f0-8688-4ccc6adda413qt6-webengine -- Multiple vulnerabilities

Qt qtwebengine-chromium repo reports:

Backports for 11 security bugs in Chromium:

  • CVE-2024-11477: 7-Zip Zstd decompression integer underflow
  • CVE-2025-0762: Use after free in DevTools
  • CVE-2025-0996: Inappropriate implementation in Browser UI
  • CVE-2025-0998: Out of bounds memory access in V8
  • CVE-2025-0999: Heap buffer overflow in V8
  • CVE-2025-1006: Use after free in Network
  • CVE-2025-1426: Heap buffer overflow in GPU
  • CVE-2025-1918: Out of bounds read in Pdfium
  • CVE-2025-1919: Out of bounds read in Media
  • CVE-2025-1921: Inappropriate implementation in Media
  • CVE-2025-2036: Use after free in Inspector

Discovery 2025-02-20
Entry 2025-03-29
qt6-pdf
qt6-webengine
< 6.8.3

CVE-2024-11477
CVE-2025-0762
CVE-2025-0996
CVE-2025-0998
CVE-2025-0999
CVE-2025-1006
CVE-2025-1426
CVE-2025-1918
CVE-2025-1919
CVE-2025-1921
CVE-2025-2036
https://code.qt.io/cgit/qt/qtwebengine-chromium.git/log/?h=122-based
edf83c10-83b8-11f0-b6e5-4ccc6adda413qt6-webengine -- Multiple vulnerabilities

Qt qtwebengine-chromium repo reports:

Backports for 25 security bugs in Chromium:

  • CVE-2025-5063: Use after free in Compositing
  • CVE-2025-5064: Inappropriate implementation in Background Fetch
  • CVE-2025-5065: Inappropriate implementation in FileSystemAccess API
  • CVE-2025-5068: Use after free in Blink
  • CVE-2025-5280: Out of bounds write in V8
  • CVE-2025-5281: Inappropriate implementation in BFCache
  • CVE-2025-5283: Use after free in libvpx
  • CVE-2025-5419: Out of bounds read and write in V8
  • CVE-2025-6191: Integer overflow in V8
  • CVE-2025-6192: Use after free in Profiler
  • CVE-2025-6554: Type Confusion in V8
  • CVE-2025-6556: Insufficient policy enforcement in Loader
  • CVE-2025-6557: Insufficient data validation in DevTools
  • CVE-2025-6558: Incorrect validation of untrusted input in ANGLE and GPU
  • CVE-2025-7656: Integer overflow in V8
  • CVE-2025-7657: Use after free in WebRTC
  • CVE-2025-8010: Type Confusion in V8
  • CVE-2025-8576: Use after free in Extensions
  • CVE-2025-8578: Use after free in Cast
  • CVE-2025-8580: Inappropriate implementation in Filesystems
  • CVE-2025-8582: Insufficient validation of untrusted input in DOM
  • CVE-2025-8879: Heap buffer overflow in libaom
  • CVE-2025-8880: Race in V8
  • CVE-2025-8881: Inappropriate implementation in File Picker
  • CVE-2025-8901: Out of bounds write in ANGLE

Discovery 2025-05-27
Entry 2025-08-28
qt6-pdf
qt6-webengine
< 6.9.2

CVE-2025-5063
CVE-2025-5064
CVE-2025-5065
CVE-2025-5068
CVE-2025-5280
CVE-2025-5281
CVE-2025-5283
CVE-2025-5419
CVE-2025-6191
CVE-2025-6192
CVE-2025-6554
CVE-2025-6556
CVE-2025-6557
CVE-2025-6558
CVE-2025-7656
CVE-2025-7657
CVE-2025-8010
CVE-2025-8576
CVE-2025-8578
CVE-2025-8580
CVE-2025-8582
CVE-2025-8879
CVE-2025-8880
CVE-2025-8881
CVE-2025-8901
https://code.qt.io/cgit/qt/qtwebengine-chromium.git/log/?h=130-based